[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (34 articles)

|

// AI-powered summary generated at 12:00

> [SANS ISC] macOS: Who’s Behind This Network Connection?
Today, I published the following diary on isc.sans.edu: “macOS: Who’s Behind This Network Connection?“: When you must investigate suspicious behavior or work on an actual incident, you could be asked to determine who’s behind a network connection. From a pure network point of view, your firewall or...
> Le domaine de messagerie gouvernemental "gov.lk" du Sri Lanka
Une attaque massive de ransomware a touché le domaine de messagerie gouvernemental "gov.lk" du Sri Lanka, entraînant la perte de données du 17 mai au 26 août 2023. L'agence de technologie de l'information et de la communication (ICTA) a confirmé que le virus aurait pu affecter environ 5 000 adresses...
> Western Washington Medical Group
Le Western Washington Medical Group a signalé une violation de données affectant jusqu'à 350 863 patients, impliquant un incident de piratage/IT sans plus de détails disponibles pour le moment.
> Privacy Regulator Warns of Surge in “Text Pest” Cases
Nearly one in three young adults has had their personal information misused
> Researchers Discover Reply URL Takeover Issue in Azure
Vulnerability could be exploited to gain elevated privileges
> [SANS ISC] Python Malware Using Postgresql for C2 Communications
Today, I published the following diary on isc.sans.edu: “Python Malware Using Postgresql for C2 Communications“: For modern malware, having access to its C2 (Command and control) is a crucial point. There are many ways to connect to a C2 server using tons of protocols, but today, HTTP remains very c...
> FBI: Barracuda Appliances Still Being Exploited By China
Feds warn that patching will not rid system of APT group
> Lazarus Group Targets Internet Infrastructure and Healthcare with 'QuiteRAT' Malware
QuiteRAT, the North-Korea-Backed group’s new malware, exploits a 2022 ManageEngine ServiceDesk vulnerability
> HTL Mödling
Le directeur d'école Hannes Sauerzopf explique dans un entretien avec NÖN que rien ne fonctionnait, du téléphone à l'ordinateur. Tout était crypté, donc ils ont débranché immédiatement et fait appel à trois entreprises externes pour analyser la situation et restaurer l'infrastructure numérique d'ici...
> Creative QakBot Attack Tactics Challenge Security Defenses
Threat actors use unique infection chains to deploy QakBot malware
> Carnegie Mellon University
L'Université Carnegie Mellon a été victime d'une cyberattaque le 25 août 2023, qui a potentiellement compromis les informations personnelles de plus de 7 300 personnes, incluant des étudiants actuels ou anciens, des employés, des candidats et des contractants. L'attaque a été rapidement détectée par...
> FBI Flags $40M Crypto Cash-Out Plot By North Korean Hackers
Between Monday and Tuesday, the FBI has traced approximately 1580 stolen Bitcoins
> Data of 2.6 Million Duolingo Users Leaked on Hacking Forum
The compromised data includes names, usernames, email addresses and internal service-related details
> Astrid-Lindgren-Schule
L'école spécialisée Astrid-Lindgren-Schule à Lemgo a été victime d'une cyberattaque qui a toujours des conséquences. Les systèmes de téléphone et d'e-mail de l'école ne fonctionnent toujours pas. Des experts travaillent actuellement à restaurer les données qui ont été cryptées lors de l'attaque. Ini...
> New Study Sheds Light on Adhubllka Ransomware Network
Netenrich suggested LOLKEK, BIT, OBZ, U2K and TZW ransomware strains share significant similarities
> NIST Publishes Draft Post-Quantum Cryptography Standards
The draft standards are expected to become the global benchmark for quantum-resistant cybersecurity across the world in 2024
> TissuPath Australia
La clinique TissuPath a envoyé une lettre de notification à tous les médecins référents principaux concernant l'incident et est en train de contacter toutes les personnes affectées. Le Centre de cybersécurité australien (Australian Cyber Security Centre - ACSC) de l'Australian Signals Directorate es...
> Sensitive Data of 10 Million at Risk After French Employment Agency Breach
The data breach is suspected to be linked to the Clop MOVEit hack
> Sextortion Scams Surge 178% in a Year
Emails use social engineering to con victims
> Stadtwerke NeumĂĽnster (SWN)
Les Stadtwerke Neumünster (SWN) en Allemagne ont été victimes d'une cyberattaque de type espionnage, ce qui les a conduits à mettre hors ligne tous leurs systèmes informatiques par mesure de précaution. Bien que les services essentiels tels que l'électricité, le gaz, le chauffage et l'internet reste...